If you can drill down to their IP's, or their CDIR range, you could blacklist the IP's requests at the server's firewall (iptables or ufw) -- drop their connections -- 'go stealth'. You need root access to the server to do this. To them you are offline. If they move to another IP you would have to do it again.
|